Description
The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-2223 | The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) or possibly have unspecified other impact via crafted H.264 data. |
Ubuntu USN |
USN-1790-1 | Libav vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T15:27:41.147Z
Reserved: 2013-02-26T00:00:00.000Z
Link: CVE-2013-2277
No data.
Status : Deferred
Published: 2013-02-27T16:55:02.777
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-2277
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN